Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-107799

MEDIUM NVD
CVSS Score 5.4
Severity MEDIUM
Published Oct 08, 2026
Vendor unknown

Description

Jivejdon through 5.0 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject script by posting unsanitized forum message bodies. Message bodies are rendered by messageListBody.jsp with filter="false" and non-escaping default filters, executing script in the browser of every user viewing the thread.

References